CVE-2023-53451NULL Pointer Dereference in Linux

Severity
5.5MEDIUMNVD
EPSS
0.0%
top 95.77%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 1

Description

In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix potential NULL pointer dereference Klocwork tool reported 'cur_dsd' may be dereferenced. Add fix to validate pointer before dereferencing the pointer.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages4 packages

NVDlinux/linux_kernel2.6.354.14.322+6
Debianlinux/linux_kernel< 5.10.191-1+3
CVEListV5linux/linuxa9083016a5314b3aeba6e0d2e814872e72168c0802405f4023866ae91a611b5b85cb2e074ec2de5a+8
debiandebian/linux< linux 6.1.52-1 (bookworm)

Patches

🔴Vulnerability Details

2
GHSA
GHSA-wp48-4jf2-3v5v: In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix potential NULL pointer dereference Klocwork tool reported 'cu2025-10-01
OSV
CVE-2023-53451: In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix potential NULL pointer dereference Klocwork tool reported 'cur_2025-10-01

📋Vendor Advisories

2
Red Hat
kernel: scsi: qla2xxx: Fix potential NULL pointer dereference2025-10-01
Debian
CVE-2023-53451: linux - In the Linux kernel, the following vulnerability has been resolved: scsi: qla2x...2023
CVE-2023-53451 — NULL Pointer Dereference in Linux | cvebase